Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Module 1: Introduction and Core Concepts
- Overview of Microsoft Intune / Endpoint Manager
- Integration with Configuration Manager (co-management, cloud attach models)
- Advantages of adopting modern endpoint management strategies
- Fundamental concepts: devices, applications, data, and users
- Intune architecture, role definitions, and licensing structures
Module 2: Identity and Access Management
- Key concepts in Microsoft Entra ID / Azure AD
- Directory synchronization from on-premises AD to Entra ID (via Azure AD Connect)
- Device registration types: Azure AD Join and Hybrid AD Join
- Defining roles, groups, and permissions within Intune
- Implementing Conditional Access and its synergy with Intune
Module 3: Device Enrollment Processes
- Enrollment methodologies for Windows, iOS, Android, and macOS
- Windows Autopilot: underlying concepts, profiles, and workflow processes
- Automated enrollment using Apple DEP and Android Zero-touch
- Distinguishing between personal device (BYOD) and corporate device management
- Differentiating MDM and MAM (Mobile Device Management vs. Mobile Application Management)
Module 4: Configuration and Compliance Frameworks
- Establishing device compliance policies
- Creating configuration policies (Configuration Profiles)
- Enforcing device restrictions and security controls
- Implementing App Protection Policies
- Applying conditional access policies driven by compliance status
Module 5: Application Management Strategies
- Categorizing applications in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
- Cycles of deployment, installation, removal, and updating of applications
- Protecting application-specific data
- Managing application policies in relation to corporate data
- Handling license and assignment management
Module 6: Updates and Patch Management
- Integrating Windows Update for Business with Intune
- Defining feature and quality update policies
- Implementing deployment ring models
- Tracking and monitoring update status
- Formulating update strategies for corporate environments
Module 7: Security and Threat Protection
- Integrating Microsoft Defender for Endpoint with Intune
- Applying Microsoft security baselines and templates
- Configuring threat protection measures (antimalware, firewall, etc.)
- Managing device encryption (BitLocker) and encryption policies
- Handling certificate management and secure VPN/Wi-Fi profiles
Module 8: Monitoring, Reporting, and Troubleshooting
- Utilizing dashboards and default reporting tools
- Analyzing logs and diagnostics (e.g., enrollment errors, policy conflicts)
- Leveraging support and troubleshooting utilities within Intune
- Navigating administration portals (device portal, company portal)
- Configuring alerts and notification systems
Module 9: Advanced Scenarios and Integrations
- Co-management strategies with Configuration Manager
- Managing devices without traditional enrollment (“Autopilot for existing devices”)
- Integration with other Microsoft services (Defender, Azure, Copilot, etc.)
- Automation techniques using PowerShell and Graph API
- Developing governance strategies and enterprise-scale structures
- Applying best practices for design and implementation
Summary and Next Steps
Requirements
- Working knowledge of Microsoft 365 and Azure infrastructures
- Practical experience with Windows or mobile device administration
- Proficiency in organizational IT security frameworks
Target Audience
- System administrators
- Specialists in endpoint management
- IT professionals responsible for enterprise device and security policy oversight
Testimonials (1)
Easy to follow instructions and trainer was very helpfully when I had issues